Avast WEBforum

Other => Viruses and worms => Topic started by: melissarosie on February 21, 2014, 11:44:59 PM

Title: How can I remove a virus from my own tumblr blog?
Post by: melissarosie on February 21, 2014, 11:44:59 PM
Avast has blocked my tumblr blog and the end of my URL has a {gzip} and when I click more information it says: HTML:Includer-AY [Trj]

I contacted tumblr support but haven't had anything back from them. I really have no idea how to get rid of this virus, if there is one

I saw a similar thread before but I couldn't see how it was resolved. I really don't want to change my tumblr username as it's more of a trademark as it links it to all of my other social media sites and blogs.

I'd really appreciate any advice, thanks! x
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Pondus on February 21, 2014, 11:48:07 PM
Giving us the url would be a start...

Title: Re: How can I remove a virus from my own tumblr blog?
Post by: ChloeRS on February 22, 2014, 12:25:52 AM
I am having the EXACT same problem.
Now my page (using Chrome) is saying 'No Data received'
it is blocked on Firefox as well.

the url in question for me at least is http://oath-omega.tumblr.com/
I know there is a jumble of crap on the page, but it is mostly images...maybe a handful of links.

any help would be great.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: melissarosie on February 22, 2014, 12:28:52 AM
Oh sure! It's hxtp://thenewwildwest.tumblr.com/
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Pondus on February 22, 2014, 12:38:06 AM
here is a start....

thenewwildwest.tumblr.com is Suspicious  http://maldb.com/thenewwildwest.tumblr.com/

oath-omega.tumblr.com is clean  http://maldb.com/oath-omega.tumblr.com/





Title: Re: How can I remove a virus from my own tumblr blog?
Post by: ChloeRS on February 22, 2014, 12:44:33 AM
changed to
oathomega.tumblr.com
and checked on maldb and it is suspicious.

Thank you for checking.
seems we are being hacked....?

If I get anymore info I will let you know.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: melissarosie on February 22, 2014, 01:03:33 AM
Thanks so much! I'll let you know if tumblr support replies with anything or if I find a way to fix it. I think we are being hacked, a couple of other tumblr users told me they also had the same problem!

I did edit the HTML code to add the layout and theme, maybe it's in that and we could change it? I'm not very good at this kind of thing  :-\ xxx
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: ChloeRS on February 22, 2014, 02:31:43 AM
just an update.

Also changed html theme from my third party one to a free tumblr approved one.
Scanned computer with Malware Bytes and only detected two PUPs located in IE temporary files. (don't even use Internet Explorer browser) Removed them.

Contacted Tumblr with my problem (malicious code and iframes according to maldb.com)

so i can now get to my domain without a warning, but maldb.com still says it is malicious.

I guess I will just wait for a reply from Tumblr.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: dont1028 on February 22, 2014, 05:15:11 AM
I narrowed it down to this line of code in mine...

<script type="text/javascript" src="http://static.tumblr.com/o0thhnj/QDcmcmi8j/infinitescrolling.txt"></script>

Yours also shares the same infinitescrolling.txt
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: logantknight on February 22, 2014, 07:04:02 AM
I have the same issue with hxtp://rosieturnerx.tumblr.com/
I can get editing access through the tumblr dashboard without any issues and it all shows fine there, I even replaced the html from a backup file in case anything had been added to the code, but it still won't load.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: StartheFox on February 22, 2014, 08:24:11 AM
I just recently started having this problem, I cleared the cache and updated java, it didn't work though. I'm trying to get to someone's blog and it absolutely will not try to load it anymore. I looked it up on the maldb site and it said it was suspicious.
I also tried doing a bit of research on this issue and it seems fairly new. I did, however, find the exact thing on http://www.avast.com/en-us/virus-update-history (http://www.avast.com/en-us/virus-update-history). If I am reading it right, it was only noticed on 2-21-2014. It seems like a more recent problem that few people are having.
Not sure if any of that helps but I just would like to see that blog and many others again...
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Milos on February 22, 2014, 10:37:05 AM
Hello,
thanks for reporting the false positive. HTML:Includer-AY [Trj] will be fixed.

Milos
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: ichigokisu on February 22, 2014, 02:02:48 PM
Same here... avast blocked me from going to my url... maldb shows it as suspicious... changed theme and now I'm able to access without avast warning (maldb still shows the suspicious hidden iframes) but I get an empty response from chrome when going 2nd page. people using other antivirus have no problem watching my blog though. I got no reply from tumblr about this yet.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: nikokaoja77 on February 22, 2014, 02:59:35 PM
same problem here ... includer-AY |Trj| appear when i try to go on my own tumblr page... HELP please
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Pondus on February 22, 2014, 03:07:49 PM
same problem here ... includer-AY |Trj| appear when i try to go on my own tumblr page... HELP please
Did you read Milos post above   ?
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: nikokaoja77 on February 22, 2014, 03:18:49 PM
yes now i saw it... I hope it mean it will be resolved as a problem a.s.a.p. ?
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: ChloeRS on February 22, 2014, 10:30:25 PM
well i'm glad it is a false positive.

However, I noticed a javascript that is a self tracking thing and maldb says that it IS malicious. Anything that self tracks sounds malicious to me. so idk i might just delete my account and start anew.....
i haven't seen "malicious code" on anyone else's blog.

oathomega.tumblr.com
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: StartheFox on February 22, 2014, 10:57:52 PM
I just think it's odd how I can't access these blogs on this computer but on another one with Avast, i can. It doesn't give me a warning or anything, it just goes as if nothing happened.

Hope it gets fixed soon!  :)
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Asyn on February 22, 2014, 11:02:16 PM
Hope it gets fixed soon!  :)

It has been fixed already, update your VPS.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: StartheFox on February 23, 2014, 12:18:33 AM
It has been fixed already, update your VPS.

I didn't even think to do that, thanks!   :D
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: Asyn on February 23, 2014, 08:41:55 AM
You're welcome.
Title: Re: How can I remove a virus from my own tumblr blog?
Post by: melissarosie on February 23, 2014, 09:45:13 AM
Thank you Milos and thanks for everyone for helping sort this issue out! I'm so glad it's not a virus. I can access my tumblr now :D